First published: Wed Jun 22 2022(Updated: )
IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 could allow a user with access to the local host (client machine) to obtain a login access token. IBM X-Force ID: 223019.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Robotic Process Automation | >=21.0.0<21.0.3 | |
Microsoft Windows | ||
<=< 21.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-22412 is a vulnerability in IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 that allows a user with access to the local host to obtain a login access token.
CVE-2022-22412 has a severity level of 4.6, which is considered medium.
IBM Robotic Process Automation versions 21.0.0, 21.0.1, and 21.0.2 are affected by CVE-2022-22412.
To fix CVE-2022-22412, upgrade IBM Robotic Process Automation to version 21.0.3 or higher.
You can find more information about CVE-2022-22412 on the IBM X-Force Exchange website and the IBM support page.